Google Security Advisories · December 2014 — Google Security Advisories
10 advisories 10 CVEs

GCVE / Google Cloud / Chrome / Android / Project Zero / OSS for 2014-12. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity).

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

CVE-2014-8507

Open SourceWeaponized exploitCRITICAL2014-12-15

Multiple SQL injection vulnerabilities in the queryLastApp method in packages/WAPPushManager/src/com/android/smspush/WapPushManager.java in the WAPPushManager module in Android before 5.0.0 allow remote attackers to execute arbitrary SQL commands, and ...

CVEs:CVE-2014-8507

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2014-8609

Open SourceWeaponized exploitCRITICAL2014-12-15

The addAccount method in src/com/android/settings/accounts/AddAccountSettings.java in the Settings application in Android before 5.0.0 does not properly create a PendingIntent, which allows attackers to use the SYSTEM uid for broadcasting an intent wit...

CVEs:CVE-2014-8609

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2014-8610

Open SourceWeaponized exploitLOW2014-12-15

AndroidManifest.xml in Android before 5.0.0 does not require the SEND_SMS permission for the SmsReceiver receiver, which allows attackers to send stored SMS messages, and consequently transmit arbitrary new draft SMS messages or trigger additional per-...

CVEs:CVE-2014-8610

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2014-7911

Open SourceActive exploitation (sightings)CRITICAL2014-12-15

luni/src/main/java/java/io/ObjectInputStream.java in the java.io.ObjectInputStream implementation in Android before 5.0.0 does not verify that deserialization will result in an object that met the requirements for serialization, which allows attackers ...

CVEs:CVE-2014-7911

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2014-9174

GoogleEPSS <= 49%CRITICAL2014-12-02

Cross-site scripting (XSS) vulnerability in the Google Analytics by Yoast (google-analytics-for-wordpress) plugin before 5.1.3 for WordPress allows remote attackers to inject arbitrary web script or HTML via the "Manually enter your UA code" (manual_ua...

CVEs:CVE-2014-9174

Affected products

ProductStatusVendorPackageEcosystem
google_analytics affected yoast
Upstream advisory

CVE-2011-1795

GoogleEPSS <= 49%HIGH2014-12-26

Integer underflow in the HTMLFormElement::removeFormElement function in html/HTMLFormElement.cpp in WebCore in WebKit in Google Chrome before 11.0.696.65 allows remote attackers to cause a denial of service (application crash) or possibly have unspecif...

CVEs:CVE-2011-1795

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2011-1793

GoogleEPSS <= 49%CRITICAL2014-12-26

rendering/svg/RenderSVGResourceFilter.cpp in WebCore in WebKit in Google Chrome before 11.0.696.65 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted SVG document that leads ...

CVEs:CVE-2011-1793

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2011-1794

GoogleEPSS <= 49%CRITICAL2014-12-26

Integer overflow in the FilterEffect::copyImageBytes function in platform/graphics/filters/FilterEffect.cpp in the SVG filter implementation in WebCore in WebKit in Google Chrome before 11.0.696.65 allows remote attackers to cause a denial of service (...

CVEs:CVE-2011-1794

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2011-1796

GoogleEPSS <= 49%CRITICAL2014-12-26

Use-after-free vulnerability in the FrameView::calculateScrollbarModesForLayout function in page/FrameView.cpp in WebCore in WebKit in Google Chrome before 11.0.696.65 allows remote attackers to cause a denial of service (application crash) or possibly...

CVEs:CVE-2011-1796

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2011-1798

GoogleEPSS <= 49%HIGH2014-12-26

rendering/svg/RenderSVGText.cpp in WebCore in WebKit in Google Chrome before 11.0.696.65 does not properly perform a cast of an unspecified variable during an attempt to handle a block child, which allows remote attackers to cause a denial of service (...

CVEs:CVE-2011-1798

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.